ancat / meatball
A host monitoring proof of concept that uses python and ebpf to watch for bad behavior and optionally take action on it.
☆12Updated 5 years ago
Alternatives and similar repositories for meatball:
Users that are interested in meatball are comparing it to the libraries listed below
- egrets monitors egress☆45Updated 5 years ago
- Testing/collecting some container breakouts☆94Updated 5 years ago
- Going Florida on container keyring masks. A tool to demonstrate the ineffectivity containers have on isolating Linux Kernel keyrings.☆43Updated last year
- Expand CIDRs or wrangle a list of IPs back to its smallest CIDR blocks possible☆10Updated 5 years ago
- Tools for Network Archaeology (internet protocol analysis)☆29Updated last year
- Container for assorted volatility plugins.☆22Updated 11 years ago
- Passe Partout dumps cryptographic keys from running processes. It is useful to extract private ssh keys from ssh agent.☆27Updated 9 years ago
- Wax is a mediocre fuzzer I'm prototyping to test some ideas and get rid of others.☆18Updated 6 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- Tool to examine the behaviour of setuid binaries under constrained limits.☆61Updated 4 years ago
- Ccollection of Linux loadable kernel modules aimed to logs any user action☆26Updated 6 years ago
- Mass DNS resolution tool☆37Updated 4 years ago
- Docker Secure Computing Profile Generator☆48Updated 3 years ago
- ☆27Updated 5 months ago
- Web of trust grapher☆38Updated last month
- D4 core software (server and sample sensor client)☆42Updated last year
- first commit☆20Updated last year
- Opensvp is a security tool implementing "attacks" to be able to test the resistance of firewall to protocol level attack.☆48Updated 8 years ago
- Extract TLS certificates from pcap files or network interfaces, fingerprint TLS client/server interactions with ja3/ja3s☆37Updated 5 years ago
- Pown Proxy is a versatile web application security testing proxy with cool TUI features.☆60Updated 5 years ago
- The SSH Multiplex Backdoor Tool☆64Updated 5 years ago
- Monitor arbitrary TCP traffic using your HTTP interception proxy of choice☆48Updated 7 years ago
- Stealth is a File Integrity scanner performing its work in a stealthy way.☆12Updated 6 years ago
- dawg the hallway monitor - monitor operating system changes and analyze introduced attack surface when installing software☆55Updated 5 years ago
- Troje is a honeypot built around lxc containers. It will run each connection with the service within a seperate lxc container.☆44Updated 10 years ago
- Wraps github api for openly available information about an organization, user, or repo☆130Updated last year
- retrace is a versatile security vulnerability / bug discovery tool through monitoring and modifying the behavior of compiled binaries on …☆61Updated 3 years ago
- A Platform for Testing Secure Coding/Config☆18Updated 6 years ago
- DNS Firewall Enforcer☆49Updated 6 years ago
- Pure Python netflow and DNS correlation, with reusable Frame Streams, DnsTap and Protobuf implementations☆15Updated last month